Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6rr4-9qrg-g6j5

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedure via a crafted certificate.

The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedure via a crafted certificate.

EPSS

Процентиль: 66%
0.00532
Низкий

Связанные уязвимости

ubuntu
больше 12 лет назад

The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedure via a crafted certificate.

redhat
больше 12 лет назад

The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedure via a crafted certificate.

nvd
больше 12 лет назад

The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedure via a crafted certificate.

oracle-oval
больше 12 лет назад

ELSA-2013-0189: ipa-client security update (IMPORTANT)

oracle-oval
больше 12 лет назад

ELSA-2013-0188: ipa security update (IMPORTANT)

EPSS

Процентиль: 66%
0.00532
Низкий